OneLogin SSO

Follow these steps to add OneLogin as the single sign-on provider for your workspace:

  1. Open Buddy SSO settings in one browser tab.
  2. In another tab, sign in to the OneLogin admin panel.
  3. From the top navigation bar, open the Applications dropdown menu and select Applications:

  1. Click the Add app button:

  1. Select SAML Custom Connector (Advanced) from the list. Use the search filter to find this option:

  1. Define the app's display name and click Save.
  2. Select Configuration from the left navigation panel.
  3. Fill in the application details with the data copied from Buddy SSO configuration:
    • ACS (Consumer) URL → ACS / SP Assertion Consumer Service / Single Sign-On URL from Buddy
    • ACS (Consumer) URL Validator → ACS / SP Assertion Consumer Service / Single Sign-On URL from Buddy
    • Audience (EntityID) → SP Entity ID / Audience URI from Buddy

  1. Save the changes.
  2. Assign users to the application according to your needs. You can do this by clicking this icon:

  1. Open the SSO tab in the Application settings and save the data required for SSO configuration in Buddy for later use: Issuer URL, SAML 2.0 Endpoint (HTTP), and the certificate.

To download the certificate, click the View Details hyperlink.

  1. Set the SAML Signature Algorithm to SHA-256.

  1. Return to the Buddy SSO settings tab and provide the information you copied from the Google admin panel:

    • SSO URL / SAML Endpoint / Identity Provider Single Sign-On URL → SAML 2.0 Endpoint (HTTP) from OneLogin
    • Issuer → Issuer URL from OneLogin
    • Certificate → upload the OneLogin certificate you downloaded
    • Signature / Digest Method → leave at Most popular

  2. Click Test the configuration and enable the SSO on success.
  3. Sign in to your OneLogin account to save the SSO configuration.